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Reason for Allowance 



1. Claims 1-24 are allowed 



2. The columns in this table show the parallel between the independent claims 1 , 9 and 1 7. The examiner' s reason for allowance will be presented 


below. 










3. 1. 


A method 


4. 9. 


A computer-readable storage medium 


5. 17. An apparatus 


a. 


for managing user attributes 


storing instructions that when executed by 


a. 


that facilitates managing user attributes 


b. 


in a distributed computing 


a computer cause the computer to perform 


b. 


in a distributed computing system, 




system, 


a method 


c. 


wherein user attributes determine access 


c. 


wherein user attributes determine 


a. 


for managing user attributes 




rights to a computer application: 




access rights to a computer 


b. 


in a distributed computing system, 


d. 


the apparatus comprising: 




application: 


c. 


wherein user attributes deterrnine 






d. 


the method comprising: 




access rights to a computer 




i a modifying mechanism configured 






application 




to modify 




i modifying 


d. 


the method comprising: 




(1) an attribute database in order to 




(1) an attribute database in 








create modifications, 




order to create 




i modifying 




(a) wherein the attribute 




modifications, 




(1) an attribute database in 




database includes 




(a) wherein the 




order to create 




(i) a data structure 




attribute database 




modifications, 




1) identifying 




includes 




(a) wherein the attribute 




a) a plurality 




(i) a plurality of 




database includes 




of possible 




possible user 




(i) a data structure 




user 




attributes 




1) identifying 




attributes 




and 




a) a 




and 




(ii) a data 




plurality 




b) a plurality 




structure 




or 




of users; 




identifying a 




Tin Qcihl f* 






plurality of 




user 

attributes 
and 




ii an identity certificate obtaining 




users; 






mechanism configured to obtain 




ii obtaining 




b) a 

plurality . 




(1 ) an identity certificate from a 




(1) an identity certificate 






certificate authority, 




from a certificate 




of users; 




iii an associating mechanism 




authority, 




ii obtaining 




configured to associate 




iii associating 




( 1 ) an identity certificate from a 




( 1 ) the identity certificate 




( 1 ) the identity certificate 




certificate authority, 




(2) with a user 




(2) with a user 




iii associating 




(a) from the plurality of users 




(a) from the plurality 




(1) the identity certificate 




within the attribute 




of users 




(2) with a user 




database, 




(i) within the 




(a) from the plurality of 




(3 ) thus creating more of the 




attribute 




users 




modifications; 




databases 




(i) within the 




iv an assigning mechanism configured 




(3) thus creating more of 




attribute database, 




to assign 




the modifications; 




(3) thus creating more of the 




( 1 ) an attribute from the plurality 




iv assigning 




modifications; 




of possible user attributes 




(1) an attribute from the 




iv assigning 




(2) to the user; 




plurality of possible 




( 1 ) an attribute from the 




v a storing mechanism configured to 




user attributes 




plurality of possible user 




store 




(2) to the user; 




attributes 




( 1 ) the attribute assigned to the 




v storing 




(2) to the user, 




user 




(1) the attribute assigned 




v storing 




(2) into the attribute database, 




to the user 




( 1 ) the attribute assi gned to the 




(3) thus creating more of the 




(2) into the attribute 




user 




modifications; and 




database, 




(2) into the attribute database 




vi a distributing mechanism that is 




(3) thus creating more of 




(3) thus creating more of the 




configured to distribute 




the modifications; and 




modifications; and 




(1) the modifications to the 




vi distributing 




vi distributing 




attribute database 




(1) the modifications to 




(1) the modifications to the 




(2) to a plurality of hosts 




the attribute database 




attribute database 




(a) coupled together by a 




(2) to a plurality of hosts 




(2) to a plurality of hosts 




network; 




(a) coupled together 




(a) coupled together by a 


e. 


wherein the user is granted 




by a network; 




network; 




i access rights 


e. 


wherein the user is granted 

i access rights 

ii based on 

(1) the attribute and 

(2) the identity certificate. 


e. 


wherein the user is granted access 
rights 

i based on 

(1) the attribute and 

(2) the identity certificate. 




ii based on 

(1) the attribute and 

(2) the identity certificate. 
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6. With regard to claims 1, 9 and 17: 

a. The prior art of record fail to teach of suggest: 
i distributing 

( 1 ) to a plurality of host 

(2) a modification to an attribute database, 

(a) which modification to the attribute database is a combination of: 

(i) an identity certificate, 

1) which identity certificate is obtained from a certificate authority, and 

(ii) an attribute, 

1) which attribute is: 

a) from a plurality of attributes that are included in a data structure in the attribute database, 

b) not obtained from a certificate authority (and is not a certified in an attribute certificate like the identity 
certificate), 

c) associated with the identity certificate, and 

d) assigned to a user. 

7. With regard to claims 2-8, 10-16 and 18-24: 

a. These claims depend on claim 1, 9 and 17, which are allowable over the prior art of record and thus are also allowable. 

8. Any comments considered necessary by applicant must be submitted no later than the payment of the issue fee and, to avoid processing 
delays, should preferably accompany the issue fee. Such submissions should be clearly labeled "Comments on Statement of Reasons for 
Allowance." 

9. The prior art made of record and not relied upon is considered pertinent to applicant's disclosure. 

10. Any inquiry concerning this communication or earlier communications from the examiner should be directed to Ly V. Hua 
whose telephone number is W®^^^. The examiner can normally be reached on Monday to Friday from 9:00 AM to 5 :30 
PM. 

If attempts to reach the examiner by telephone are unsuccessful, the examiner's supervisor, Vu Kim, can be reached on Mill 
||||. The fax phone number for the organization where this application or proceeding is assigned is 703-872-9306. 

Information regarding the status of an application may be obtained from the Patent Application Information Retrieval (PAIR) 
system. Status information for published applications maybe obtained from either Private PAIR or Public PAIR, Status 
information for unpublished applications is available through Private PAIR only. For more information about the PAIR system, 
see http://pair-direct.uspto.gov . 



1 1 . The applicant is hereby notified that: 

a. The new phone number for TC 2100 receptionist is (571) 272-2100. 
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